helvede.net is one of the many independent Mastodon servers you can use to participate in the fediverse.
Velkommen til Helvede, fediversets hotteste instance! Vi er en queerfeministisk server, der shitposter i den 9. cirkel. Welcome to Hell, We’re a DK-based queerfeminist server. Read our server rules!

Server stats:

171
active users

#pgp

1 post1 participant0 posts today
Replied in thread

@froge @fj I'm not replacing @signalapp with "random tools" but good options.

Like @delta & @thunderbird as well as @monocles / #monoclesChat & @gajim which owrk flawlessly over @torproject / #Tor using @tails / @tails_live / #Tails and @guardianproject / #Orbot respectably.

Considering the costs of even acquiring and upkeeping an #anonymous #SIM, I'd rather pay €2 p.m. for #XMPP+#OMEMO and #PGP/MIME-supported #eMail with thr option of self-custody than $2,50+ p.m. just to keep a phone number.

Or is anyone here expecting @Mer__edith to risk jail for life amd not comply with #CloudAct?

It stenches like #ANØM, because NOTHING IS FOR FREE and running a #VCmoneyBurningParty is expensive...

Infosec.SpaceKevin Karhan :verified: (@kkarhan@infosec.space)@osman@hachyderm.io If your #OpSec, #InfoSec, #ComSec and/or #ITsec relies on @signalapp@mastodon.world and/or @Mer__edith@mastodon.world [risking jail *or worse*](https://web.archive.org/web/20210908180219/https://twitter.com/thegrugq/status/1085614812581715968), you fucked up! - If #Signal was secure, it would've been shutdown like #EncroChat & #SkyECC. Seriously, to me #Signal stenches #Honeypot like #ANØM & #CryptoAG. - All Signal fans do is #FUD #PGP/MIME and#XMPP+#OMEMO which are truly #decentralized and allow real #SelfHosting as well as #SelfCustody for complete control of all the data and keys... That's why I get people setup with it!
Replied in thread

@fj I still think @signalapp has fundamental flaws like demanding #PII (#PhoneNumbers can't be obtained anonymously around the globe and are trivial to track down to devices and thus users), being subject to #CloudAct as an unnecessary & 100% avoidable risk as well as #Shitcoin-#Scam shilling (#MobileCoin) and it's #proprietary, #SingleVendor & #SingleProvider nature that makes it inferior to real #E2EE with #SelfCustody like #PGP/MIME & #XMPP+#OMEMO!

Den krönenden Abschluss hat heute für mich @qbi gemacht. Danke! In seinem Vortrag „25 Jahre später verschlüsselt Johnny immer noch nicht” geht er auf die vielfältigen Probleme der Emailverschlüsselung ein. Er kommt zur einfachen, aber sicher auch traurigen Schlussfolgerung: „Email ist irreparabel kaputt für Verschlüsselung, nutzt @signalapp#clt2025 #encryption #pgp

I'm gonna list out my interests, and there's a ton of 'em. Classic autism move, getting obsessed with weird topics that stick with you forever.

Heads up, #Fediverse, you might lose it when I drop 100+ hashtags in one post. That's just how autism rolls I guess.

## Interests and Obsessions

Substances and Legalization:
#Drugs #LSD #Shrooms #Psychedelics #THC #Psilocybin

Tech and Privacy:
#Linux #Debian #QubesOS #GrapheneOS #GooglePixel #Auxio #AntennaPod #PGP #Obtainium #PeerTube #FreeTube #Privacy #Security #Thunderbird #CapyReader #RSS #AtomFeeds #NewPipe #Mastodon #Pixelfed #Openreads #Signal #LocalSend #ThinkPad #FreeSoftware #FSF #ElementaryOS #Elementary #PaldoLinux #GNOME #i3wm #Monero #Mullvad #iVPN #LinusTorvald #Fairphone #DivestOS #Tor #TailsOS #Whonix

Politics and Activism:
#AnarchoSyndicalism #Anarchism #Syndicalism #LGBTQIA #LGBTQ #LGBT #TransRights #HumanRights #WorkersRights #Unions #Decentralization #Organizing #GrassRoots #DirectAction #AntiCapitalism #FuckSpotify #Piratpartiet #PirateParty #Piracy #ThePirateBay #EdwardSnowden #Wikileaks #JulianAssange #MeredithWhittaker #RichardStallman #RightToRepair

Music and Artists:
#ZoëStraub #Bandcamp #ShadowOfIntent #Alestorm #AlisonSudol #CœurDePirate #RussianPop #YuliaSavicheva #SavichevaMusic #Music

Content Creators:
#DougDoug #DistroTube #MattRose #TheHatedOne #EricParker #The8BitGuy #BernadetteBanner #LynnSaga #LukeSmith #UndineAlmani #DarkViperAU

History and Tragic Events:
#NorthKorea #WW2 #ColdWar #KoreanWar #Unit731 #NuclearWeapons #USSR

Fashion and Identity:
#GenderFluidity #Dresses #Lingerie #Pins #Buttons #Statues

Culture and Media:
#Buddhism #Warframe #Moomin #Books #Joker2019 #SocialIssues #AlternativeSocialStructures

#Traveling and Destinations:
#Austria #Vienna #Salzburg #Idlib #Pyongyang #Moscow #Bergen

Miscellaneous:
#AntiReactionContentCreators #ReactionContentBad #Crying

Yeah, I know it's a lot. But that's the beauty of an autistic brain I guess, we go deep on what fascinates us.

Replied in thread

@dalias @lauren
@pixelschubsi

Also the blatant dismissal of absolitely basic #OpSec & #ComSec is just flabberghasting.

Only #decentralized, #OpenSource & #OpenStandards can actuall survive long-term and remain #secure.

It's the same reasons we use #PGPG/MIME & #SSH and not #X400 & #X25!

IOW: Think "How can you weaponize Signal?" and see what you csn do just holding key people in contempt...

The less #info a provider has, the less they can be forced to snitch upon customers.

"#JustUseSgnal!" is a form of dangerous "#TechPopulism" aimed at bamboozling #TechIlliterates who don't know better, abusing information asymetry to pull rank instead of investing the time and effort to *explain "how" and "why" this is indeed a good or bad idea.

The only ones that have a chance to beat that are @delta / #deltaChat but that's just #PGP/MIME #eMail in a nice UI...

  • You may now laugh at me and think my "#TinfoilHat sits too tight" but I'm shure sooner or later I'll be evidenced as correct...
Hachyderm.ioCassandrich (@dalias@hachyderm.io)@kkarhan@infosec.space @signalapp@mastodon.world @monocles@monocles.social @lauren@mastodon.laurenweinstein.org Very few systems promoted as Signal alternatives match the cryptographic privacy properties (see: ratcheting, etc.) of Signal. The claims about "located in the USA" and "Cloud Act" are all nonsense because the only threat to Signal users from this is availability (seizure and shutdown of the server infrastructure), not undetected breakage of privacy properties. There are presently no systems with superior privacy properties to Signal *and* level of functionality on par with what general public expects. There are a lot (like the XMPP stuff, *sigh*, and Matrix) that are worse in both regards. If you're happy with reduced functionality, Cwtch (and possibly some other similar Tor-based systems) or VeilidChat are stronger, but it's gonna be a while before you convince normies to use them, and in the mean time they're still going to be on insecure shit like WhatsApp, FB Messenger, Telegram, etc...

I just released versions 0.6.2 of rsop, a stateless #OpenPGP ("SOP") CLI tool based on @rpgp:

crates.io/crates/rsop/

Changes since rsop 0.6.0:

- decryption based on session keys is now supported,
- generation of man pages and shell tab completion has been added,
- some subtle semantics fixes for component key validity were implemented.

For more on #SOP, see datatracker.ietf.org/doc/draft

crates.iocrates.io: Rust Package Registry

rPGP has recently received an audit by @ros

The audit uncovered a number of issues, in particular: Multiple cases in which malformed input data can lead to Rust "panic"s. Triggering these typically leads to termination of applications that use #rPGP. This can act as a vector for denial of service attacks, but does not impact confidentiality or integrity security properties.

These issues were resolved in #rPGP release 0.14.2. Updating is recommended for all users.

Replied in thread

@nerdvm @contrapunctus @mostafa228 @delta

Am I right, that the last two points, i.e. better multi-device and encryption experiences, derive from Delta Chat using #PGP instead of #PFS-polluted #OMEMO?

Unfortunately, #OX (#OpenPGP for #XMPP) doesn't take off. Only few #Jabber clients (#Gajim, #Libervia, #Profanity) support it, esp. no mobile client so far.

Oh, how I envy Delta Chat users for having encryption without cursed #forwardSecrecy!